2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-1597Cross-site scripting (XSS) vulnerability in (1) search.php and (2) topics.php for Invision Power Board (IPB) 2.0.3 and e...
CVE-2005-1596index.php in Fusion SBX 1.2 and earlier does not properly use the extract function, which allows remote attackers to byp...
CVE-2005-1595CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive info...
CVE-2005-1594SQL injection vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to execute arbitrary ...
CVE-2005-1593Cross-site scripting (XSS) vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to injec...
CVE-2005-1592Multiple "javascript vulerabilities in BB code" in BirdBlog before 1.3.1 allow remote attackers to inject arbitrary Java...
CVE-2005-1591Unknown vulnerability in NIS+ on Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (rpc.nisd disa...
CVE-2005-1590The Altiris Client Service for Windows (ACLIENT.EXE) 6.0.88 allows local users to disable password protection and access...
CVE-2005-1366Pico Server (pServ) 3.2 and earlier allows remote attackers to obtain the source code for CGI scripts via "dirname/../cg...
CVE-2005-1365Pico Server (pServ) 3.2 and earlier allows remote attackers to execute arbitrary commands via a URL with multiple leadin...
CVE-2005-1193The bbencode_second_pass and make_clickable functions in bbcode.php for phpBB before 2.0.15, as used in viewtopic.php, p...
CVE-2005-1248Buffer overflow in Apple iTunes before 4.8 allows remote attackers to execute arbitrary code via a crafted MPEG4 file.
CVE-2005-1367Pico Server (pServ) 3.2 and earlier allows local users to read arbitrary files as the pServ user via a symlink to a file...
CVE-2005-1547Heap-based buffer overflow in the demo version of Bakbone Netvault, and possibly other versions, allows remote attackers...
CVE-2005-1584Cross-site scripting (XSS) vulnerability in index.php for Quick.Forum 2.1.6 allows remote attackers to inject arbitrary ...
CVE-2005-15831Two News 1.0 allows remote attackers to (1) delete images for new stories via a direct request to admin/delete.php or (...
CVE-2005-1582Cross-site scripting (XSS) vulnerability in index.php for 1Two News 1.0 allows remote attackers to inject arbitrary web ...
CVE-2005-1556Gamespy cd-key validation system allows remote attackers to cause a denial of service (cd-key already in use) by capturi...
CVE-2005-1552GeoVision Digital Video Surveillance System 6.04, 6.1 and 7.0, when set to create JPEG images, does not properly protect...
CVE-2005-1554SQL injection vulnerability in view_user.php in WowBB 1.6, 1.61, and 1.62 allows remote attackers to execute arbitrary S...
CVE-2005-1553GeoVision Digital Video Surveillance System 6.04, 6.1 and 7.0 uses a weak encryption scheme to encrypt passwords, which ...
CVE-2005-1548SQL injection vulnerability in index.php in Advanced Guestbook 2.3.1 allows remote attackers to execute arbitrary SQL co...
CVE-2005-1546Buffer overflow in the PE parser in HT Editor before 0.8.0 allows remote attackers to execute arbitrary code via a craft...
CVE-2005-1581Cross-site scripting (XSS) vulnerability in Bug Report 1.0 allows remote attackers to inject arbitrary web script or HTM...
CVE-2005-1549Directory traversal vulnerability in easymsgb.pl in Easy Message Board allows remote attackers to read arbitrary files v...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now